Common encryption key appears to be used across all...
High severity
Unreviewed
Published
Dec 20, 2022
to the GitHub Advisory Database
•
Updated Jul 7, 2023
Description
Published by the National Vulnerability Database
Dec 16, 2022
Published to the GitHub Advisory Database
Dec 20, 2022
Last updated
Jul 7, 2023
Common encryption key appears to be used across all deployed instances of Serv-U FTP Server. Because of this an encrypted value that is exposed to an attacker can be simply recovered to plaintext.
References